This IP address has been reported a total of
934
times from
425 distinct
sources.
196.0.242.54 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
SSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoin ...
show moreSSH honeypot interaction detected. The source host initiated a connection to a monitored SSH endpoint, behavior consistent with automated SSH scanning or brute-force reconnaissance.
show less
2026-05-20T18:01:14.433318+02:00 v2202507290157366551 sshd[1860500]: Invalid user k8s from 196.0.242 ...
show more2026-05-20T18:01:14.433318+02:00 v2202507290157366551 sshd[1860500]: Invalid user k8s from 196.0.242.54 port 36168
2026-05-20T18:01:14.611284+02:00 v2202507290157366551 sshd[1860500]: Disconnected from invalid user k8s 196.0.242.54 port 36168 [preauth]
2026-05-20T18:06:49.067370+02:00 v2202507290157366551 sshd[1865097]: Disconnected from authenticating user root 196.0.242.54 port 37094 [preauth]
...
show less
196.0.242.54 (UG/Uganda/speedtest.utclonline.co.ug), 5 distributed sshd attacks on account [root] in ...
show more196.0.242.54 (UG/Uganda/speedtest.utclonline.co.ug), 5 distributed sshd attacks on account [root] in the last 3600 secs; Ports: *; Direction: 1; Trigger: LF_DISTATTACK; Logs: May 20 10:21:10 13488 sshd[4423]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.0.242.54 user=root
May 20 10:21:12 13488 sshd[4423]: Failed password for root from 196.0.242.54 port 57114 ssh2
May 20 10:21:52 13488 sshd[4439]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=192.241.156.252 user=root
May 20 10:21:55 13488 sshd[4439]: Failed password for root from 192.241.156.252 port 44990 ssh2
May 20 09:41:40 13488 sshd[975]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=156.245.207.80 user=root
IP Addresses Blocked:
show less
Brute-Force
SSH
Anonymous
2026-05-20T16:40:56.863711+02:00 mail.uninetlab.de sshd[2943106]: Failed password for invalid user s ...
show more2026-05-20T16:40:56.863711+02:00 mail.uninetlab.de sshd[2943106]: Failed password for invalid user sgp from 196.0.242.54 port 53700 ssh2
2026-05-20T16:45:51.475179+02:00 mail.uninetlab.de sshd[2946037]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.0.242.54 user=ubuntu
2026-05-20T16:45:53.453194+02:00 mail.uninetlab.de sshd[2946037]: Failed password for ubuntu from 196.0.242.54 port 37286 ssh2
...
show less
2026-05-20T07:07:31.713073-07:00 buyvm-vm-512m-las sshd-session[838596]: Invalid user admin from 196 ...
show more2026-05-20T07:07:31.713073-07:00 buyvm-vm-512m-las sshd-session[838596]: Invalid user admin from 196.0.242.54 port 32912
2026-05-20T07:10:44.172309-07:00 buyvm-vm-512m-las sshd-session[838625]: Invalid user claude from 196.0.242.54 port 49928
2026-05-20T07:12:17.493667-07:00 buyvm-vm-512m-las sshd-session[838637]: Invalid user freddy from 196.0.242.54 port 48750
...
show less
2026-05-20T08:06:32.028176-06:00 oracle5 sshd[1602952]: Invalid user admin from 196.0.242.54 port 49 ...
show more2026-05-20T08:06:32.028176-06:00 oracle5 sshd[1602952]: Invalid user admin from 196.0.242.54 port 49294
2026-05-20T08:09:49.705675-06:00 oracle5 sshd[1606995]: Invalid user claude from 196.0.242.54 port 59506
2026-05-20T08:11:24.376832-06:00 oracle5 sshd[1609100]: Invalid user freddy from 196.0.242.54 port 43038
...
show less
2026-05-20T15:57:42.295194+02:00 eclipse sshd-session[2804473]: Disconnected from authenticating use ...
show more2026-05-20T15:57:42.295194+02:00 eclipse sshd-session[2804473]: Disconnected from authenticating user root 196.0.242.54 port 41104 [preauth]
2026-05-20T16:04:57.186749+02:00 eclipse sshd-session[2806926]: Disconnected from authenticating user root 196.0.242.54 port 57992 [preauth]
2026-05-20T16:06:32.383185+02:00 eclipse sshd-session[2807504]: Invalid user admin from 196.0.242.54 port 44084
2026-05-20T16:06:32.605426+02:00 eclipse sshd-session[2807504]: Disconnected from invalid user admin 196.0.242.54 port 44084 [preauth]
2026-05-20T16:08:11.022152+02:00 eclipse sshd-session[2808089]: Disconnected from authenticating user root 196.0.242.54 port 53094 [preauth]
...
show less
2026-05-20T13:24:10.766848jump1.sailx.co sshd[21925]: Failed password for root from 196.0.242.54 por ...
show more2026-05-20T13:24:10.766848jump1.sailx.co sshd[21925]: Failed password for root from 196.0.242.54 port 43176 ssh2
2026-05-20T13:25:54.270383jump1.sailx.co sshd[22018]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=speedtest.utclonline.co.ug user=root
2026-05-20T13:25:57.037806jump1.sailx.co sshd[22018]: Failed password for root from 196.0.242.54 port 32830 ssh2
2026-05-20T13:27:34.936505jump1.sailx.co sshd[22242]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=speedtest.utclonline.co.ug user=root
2026-05-20T13:27:36.429333jump1.sailx.co sshd[22242]: Failed password for root from 196.0.242.54 port 41782 ssh2
...
show less
2026-05-20T12:51:53.156297+00:00 new-billing sshd[144613]: pam_unix(sshd:auth): authentication failu ...
show more2026-05-20T12:51:53.156297+00:00 new-billing sshd[144613]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.0.242.54 user=root
2026-05-20T12:51:54.727259+00:00 new-billing sshd[144613]: Failed password for root from 196.0.242.54 port 40878 ssh2
2026-05-20T12:53:35.184963+00:00 new-billing sshd[144619]: Invalid user claude from 196.0.242.54 port 43144
2026-05-20T12:53:35.191651+00:00 new-billing sshd[144619]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=196.0.242.54
2026-05-20T12:53:36.768803+00:00 new-billing sshd[144619]: Failed password for invalid user claude from 196.0.242.54 port 43144 ssh2
...
show less
Brute-Force
SSH
Anonymous
Invalid user claude from 196.0.242.54 port 43482
Hacking
Brute-Force
SSH
Showing 886 to
900
of 934 reports
Think this IP has been falsely reported? You may request to have the associated
reports reviewed and removed.
Request Takedown ๐ฉ